AMD's memory encryption (aka SME)

Johannes Totz johannes at jo-t.de
Sun Feb 14 16:55:59 UTC 2021


On 10/01/2021 15:33, Johannes Totz wrote:
> Hi there,
> 
> does anyone have an opinion on AMD's "Secure Memory Encryption"? This 
> transparently encrypts all/most RAM pages.
> Looking at some tech docs, this seems fairly easy to implement.

I took a stab at it https://reviews.freebsd.org/D28635
Doesn't work, haha.

Anyone wanna take a look at let me know what I'm missing?
I don't know how physical pages move around in the VM system. Thought 
I'd try to enable encryption for user-mode pages first. But that assumes 
those never transition to/from kernel-mode.


> I was wondering if someone has attempted that already, or knows of 
> reasons why not to.
> 
> 
> Thanks,
> 
> Johannes
> 
> _______________________________________________
> freebsd-security at freebsd.org mailing list
> https://lists.freebsd.org/mailman/listinfo/freebsd-security
> To unsubscribe, send any mail to "freebsd-security-unsubscribe at freebsd.org"
> 




More information about the freebsd-security mailing list